forttroff.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 2126 ms crawled 2026-05-18

US · 204.10.69.250 · AS33398 Miva Merchant, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Fort Troff | Gay Sex Toys, Fetish Gear & BDSM Shop
Description
Fort Troff is the premiere brand for the best male sex toys, leather, BDSM and fetish. Unleash your kink with the best gear for intense play!
Language
en
Canonical
https://www.forttroff.com/store/category/sale-single/

Technology

Server
nginx

Third-party hosts loaded (1)

  • api.production.descriptomizer.com×1

Social

Registration

Registrar
Network Solutions, LLC
Created
1999-07-02
Expires
2030-07-02 1504 days left
Updated
2025-05-03
Name servers
  • ns1.myecommercedns.com
  • ns1.myecommercedns.net
  • ns2.myecommercedns.com
  • ns2.myecommercedns.net

DNS records live

NS
  • edns99.ultradns.biz
  • edns99.ultradns.com
  • edns99.ultradns.net
  • edns99.ultradns.org
MX
  • 1 smtp.google.com
TXT
Show 4 TXT records
  • google-site-verification=1xzXwnOU_vBmx5hjfa5CIKbrszvtexPlzbWMNunI4gA
  • MS=ms76513722
  • leadhouse-txt-test
  • google-site-verification=1be6qdKH02Ny3Pl0-vIQNN5HAwkfJ5Deg1KGYpmO-K8

Email authentication strong

SPF
v=spf1 a a:deda177.mivamerchant.net a:dedae7863.mivamerchant.net include:spf.tapfiliate.com include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc@forttroff.com
policy: quarantine
DKIM
  • google: v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA83ViQjOfb5huiYubszYCHiTWn6gZ1xiTLMFUmFeoSDVUDhp/Wtk/u1DnZF4M2pq6PR2B493eDWFqP2bM…
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyMlw2q6/tnlLySORWAah8xtLeH+uabz8Ci/jztRxfsssBnq12A2dUABXexFg/qebqDqNtcOAQITRnb…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-04-15 to 2026-10-31
Expires in 164 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.forttroff.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • weak content type protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff, nosniff
content-security-policy
default-src 'self' https: wss:; script-src 'self' 'unsafe-eval' https: 'unsafe-inline'; style-src https: 'unsafe-inline'; base-uri 'self' https:; font-src 'self' https: data:; img-src 'self' data: https: blob:; frame-ancestors 'self'; object-src 'none'; upgrade-insecure-requests; block-all-mixed-content;
strict-transport-security
max-age=31536000; includeSubDomains; preload, max-age=15768000

Links to (4)

Linked from (3)